I find myself agreeing with Martin here; this isn't really optimal for
sid, as it doesn't take into account existing installations and
upgrades.  Even at the risk of changing behavior, I think this is an
important enough fix to warrant making env_reset the default behavior.

Differentiating between ALL and limited sudo access seems like
unnecessary logic, and is sure to confuse people (the sudoers manpage is
already quite long, more than 1000 lines; finding a brief mention of
differing behavior wrt environment variables and sudo access will
probably be missed).  I would prefer a simpler solution; simply remove
all unknown env variables in all cases.  If users are running sid, they
should be able to deal with this sort of behavioral change, and it
should be documented in NEWS.Debian.



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to